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REMARKS 

Claims 1^4 and 6-15 are pending in the appUwtion. Claims M wd 6-13 are allowed. 
Claims 14 and 15 are rejected under 35 U.S.C. § 102(e) as being anticipated by Fub et al. 

(U.S. 6,609. 1 54) (herein after Fub). 

Claims 14 and 15 have been amended to clarify tbe feamres including, for example in 
claim 14. the first and second edge nodes. The amendments are supported by the specification 
and original claims. No new matter is entered. 

The features of appUcant's claimed invention generally relate to efScienUy utiUzing an 
intranet, for example the second edge node includes a table and fciras first and second 
judgments. Only packets of users who are cataloged in the table are aUowed to be transmitted to 
an internet aftfr passing thmifrh the iniranet. 

That is, forming a judgment as to whether or not a decapsulated packet is allowed to 
transmit to an internet after passing through the intranet on the basis of thejodgrn^. 

Prior Art Rejections 

With regard to the rejection under 35 U.S.C. § 102(e) as anticipated by Fub, appUcant 
includes at least four distinguishing features below: 
1) 

Fuh discloses in col. 9. lines 2-4 that "In one embodiment, client 306 runs a browser 304. 
which is an appUcation program used to renieve and display web pages or other information 
stored m targei server 222." and in col. 9, Unes 6-8. "User 302 can use browser 304 to send an 
HTTP request over LAN 206." 

In Fuh the cUent 306 makes packets for target server 222 included in an intranet, but ^ 
not encapsulate packets into an encapsulated packet which has a destination address of a firewall 
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router 2 1 0 included in the intraaet wid a data packet including a raw packet from a user BotH 
the firewaU router 210 and the target server 222 are included in the intranet. 

Fuh does not teach that a second user having a destination address of a packet transmitted 
from a first user is included in the intranet. 

In contrast applicant claims "a first edge node included in a user network for 
^..p.„i;>rin f. a packet transmitted from a user included in said user network and transmitting an 
encapsulated packet « d^^tinatio p °f ^ ^ "^^^"^^-^ ^ " 

Accoidingly. the client 306 of Fuh differs from the &st edge node of the amended claim 
14 and Fuh fails to disclose the first edge node included in a user network fcr encapsulating a 
packet transmitted from a user included in said user network and transmitting an encapsulated 
packet having a destination address of a second edge node included in an intranet of claim 14. 
2) 

Fuh discloses in col. 9. lines 58-60 that "Assume that firewall router 210 receives an 
inbound packet from cUem 306 at external interface 420 that is intended &r target server 222," 
Fuh however fails to disclose or suggest the decapsujating an enc^sulated packet. 

It is submitted Fuh fails to teach the **a decapsulation unit for decapsolating said 
«icapsulated packet" of claim 14. 

3) 

Fuh discloses in col. 9, lines 51 to 55 that "Access control lists filter packets and can 
prevem certain packets from ^memng or exiting a netwoik. Each ACL is a Ust of inforoaalion 
that firewall router 210 may use to detennine whether packets arriving at or sent from a 
particular imerface may be communicate within or outside the firewall router," (emphasis added) 
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and -The firewall rower 21 0 also includes any number of authentication caches 432, 434" in col. 
10, lines 1-2, 

In Fuh the access control lists and the authentication caches 432, 434 are for filtering 
packets which are intended to communicate entering or exiting through the foewaU. F»h does 
not teach filtering packets intended to access an internet after passing through the intranet. 

For example appUcani claims "a table for cataloging users allowed to pass through said 
intranet" whereas in Fuh the accesscontrol lines and the authentication caches are for filtering 
packets intended to communicate widi a target server 222 included in the intranet. Accordingly, 
the access control lists and the authentication caches differ from the table of claim 14, and Fuh 
fails to disclose the features of claim 14. 

4) 

A packet transmitted from the client 306 received at the firewaU louter 210 is received at 
the target server 222 if authentication of the cUent 306 is a success. However Fuh does not 
suggest that the packet is further transmitted to an internet after passing through the intranet. 

However, in claim 14. the packet transmitted firom the first user is not finally received at 
a node included in the intranet, but is transmitted to an internet passing through the intranet if an 
authentication of the first user is a success. 

Accordingly. Fuh fails to disclose the feawres of claim 14 including: "a judgment unit for 
forming a first judgment as to whether or not a first user having a source address of decapsulated 
packet is cataloged in said table in a case where a second user having a destination address of 
said decapsulated packet is not included in said intranet and forming a second judgment as to 
whether or not said decapsulated packet is allowed to transmit to an intranet after passing 
through said intranet on the basis of said first judgment." 
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by or rendered obvious over Fub- 

m amended claim 1 5 is a method claim. Claim 1 5 includes similar distinguishing 

features which coiresponds to the system claim 14. 

For at least the foregoing reasons it is respectfully submined claim IS is not anticipated 

by or rendered obvious over Fub- 

In view of the remarks set fonh above, this appUcation is in condition for aUowance 
Which actionisrespectlUUy requested. However.if for anyreasonthe Examiner sh^^^ 

this applicationnot to he in condition for allowance, the Examiner is respectM^ 
. telephone the undersigned attorney at the number listed below prior to issuing a further Action. 
Any fee due with this paper may be charged to Deposit Account No. 50-1290. 

Respecifiilly submitted. 



Brian S. Myers r 



.Myers 
Reg. No. 46,947 
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